CVE-2002-2119: Critical severity novell edirectory vulnerability
Published Dec 31, 2002
·Updated
Novell eDirectory 8.6.2 and 8.7 use case insensitive passwords, which makes it easier for remote attackers to conduct brute force password guessing.
Affected Software
2 affected components
Novell eDirectory=8.6.2
Novell eDirectory=8.7
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityWeaknessAffected Software
Aug 5, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2119?
The severity of CVE-2002-2119 is considered medium due to its potential for brute force password attacks.
2
How do I fix CVE-2002-2119?
To fix CVE-2002-2119, upgrade to a version of Novell eDirectory that enforces case-sensitive passwords.
3
What versions of Novell eDirectory are affected by CVE-2002-2119?
CVE-2002-2119 affects Novell eDirectory versions 8.6.2 and 8.7.
4
Can CVE-2002-2119 allow unauthorized access?
Yes, CVE-2002-2119 can allow unauthorized access due to easier brute force password guessing.
5
Is there a workaround for CVE-2002-2119 if I cannot upgrade?
A potential workaround for CVE-2002-2119 is to limit the number of failed login attempts to mitigate brute force attacks.